Download Malwarebytes' Anti-Malware from [You must be registered and logged in to see this link.]

Double Click mbam-setup.exe to install the application.

Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.

If an update is found, it will download and install the latest version.

Once the program has loaded, select "Perform Quick Scan", then click Scan.

The scan may take some time to finish,so please be patient.

When the scan is complete, click OK, then Show Results to view the results.

Make sure that everything is checked, and click Remove Selected.

When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)

The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.

Note:If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.Click OK to either and let MBAM proceed with the disinfection process.If asked to restart the computer, please do so immediately.

uStart Page = [You must be registered and logged in to see this link.]uSearch Page = [You must be registered and logged in to see this link.]uSearch Bar = [You must be registered and logged in to see this link.]uInternet Settings,ProxyOverride = *.localuSearchURL,(Default) = [You must be registered and logged in to see this link.]mSearchAssistant = [You must be registered and logged in to see this link.]BHO: Yahoo! Companion BHO: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\ycomp5_6_2_0.dllBHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocxBHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dllBHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dllBHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dllBHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\googletoolbar3.dllBHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dllBHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllTB: Yahoo! Companion: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\ycomp5_6_2_0.dllTB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar3.dllTB: Veoh Web Player Video Finder: {0fbb9689-d3d7-4f7a-a2e2-585b10099bfc} - c:\program files\veoh networks\veohwebplayer\VeohIEToolbar.dllTB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No FileTB: {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - No FileTB: {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No FileuRun: [MsnMsgr] "c:\program files\windows live\messenger\MsnMsgr.Exe" /backgrounduRun: [ctfmon.exe] c:\windows\system32\ctfmon.exeuRun: [VeohPlugin] "c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe"uRun: [AutoStartNPSAgent] c:\program files\samsung\samsung new pc studio\NPSAgent.exeuRun: [Rainlendar2] c:\program files\rainlendar2\Rainlendar2.exeuRun: [Skype] "c:\program files\skype\phone\Skype.exe" /nosplash /minimizeduRun: [Vidalia] "c:\program files\vidalia bundle\vidalia\vidalia.exe"uRun: [Pando Media Booster] c:\program files\pando networks\media booster\PMB.exemRun: [RTHDCPL] RTHDCPL.EXEmRun: [Alcmtr] ALCMTR.EXEmRun: [WINCINEMAMGR] "c:\program files\intervideo\common\bin\WinCinemaMgr.exe"mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exemRun: [InCD] c:\program files\ahead\incd\InCD.exemRun: [] mRun: [Sony Ericsson PC Suite] "c:\program files\sony ericsson\mobile2\application launcher\Application Launcher.exe" /startoptionsmRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osbootmRun: [NPSStartup] mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottimemRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"mRun: [avast!] c:\progra~1\avast\ashDisp.exemRun: [OutpostMonitor] c:\progra~1\outpos~1\op_mon.exe /tray /noservicemRun: [OutpostFeedBack] "c:\program files\outpost firewall\feedback.exe" /dump:os_startupmRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"dRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /backgroundStartupFolder: c:\docume~1\default\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exeStartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\blueso~1.lnk - c:\program files\ivt corporation\bluesoleil\BlueSoleil.exeStartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\imatio~1.lnk - c:\documents and settings\default\local settings\application data\imation\ifm\Imation Flash Detect.exeStartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\interv~1.lnk - c:\program files\intervideo\common\bin\WinCinemaMgr.exeIE: Download all with Free Download Manager - [You must be registered and logged in to see this link.] files\free download manager\dlall.htmIE: Download selected with Free Download Manager - [You must be registered and logged in to see this link.] files\free download manager\dlselected.htmIE: Download with Free Download Manager - [You must be registered and logged in to see this link.] files\free download manager\dllink.htmIE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exeIE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exeIE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLLDPF: {00000055-9980-0010-8000-00AA00389B71} - [You must be registered and logged in to see this link.]DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - [You must be registered and logged in to see this link.]DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - [You must be registered and logged in to see this link.]DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - [You must be registered and logged in to see this link.]DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} - [You must be registered and logged in to see this link.]DPF: {5D6F45B3-9043-443D-A792-115447494D24} - [You must be registered and logged in to see this link.]DPF: {7C5D062A-7A1E-4A46-A02B-A928084CBD66} - [You must be registered and logged in to see this link.]DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - [You must be registered and logged in to see this link.]DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - [You must be registered and logged in to see this link.]DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - [You must be registered and logged in to see this link.]DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} - [You must be registered and logged in to see this link.]DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - [You must be registered and logged in to see this link.]DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - [You must be registered and logged in to see this link.]DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - [You must be registered and logged in to see this link.]DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} - [You must be registered and logged in to see this link.]DPF: {CEAF43B1-E8C1-426D-A63C-92C71212E6E5} - [You must be registered and logged in to see this link.]DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - [You must be registered and logged in to see this link.]DPF: {D88C7675-7CEE-4C9A-BDD4-7A43EED7794D} - [You must be registered and logged in to see this link.]DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - [You must be registered and logged in to see this link.]DPF: {E55FD215-A32E-43FE-A777-A7E8F165F557} - [You must be registered and logged in to see this link.]DPF: {F0320816-41D9-49DD-B2F3-8E7B0AE32796} - [You must be registered and logged in to see this link.]DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} - [You must be registered and logged in to see this link.]Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLLNotify: AtiExtEvent - Ati2evxx.dllAppInit_DLLs: c:\progra~1\outpos~1\wl_hook.dllSSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

12/29/2009 3:00:53 PM, error: Service Control Manager [7000] - The npkcrypt service failed to start due to the following error: The system cannot find the file specified.12/28/2009 2:35:57 PM, error: Dhcp [1002] - The IP address lease 192.168.1.100 for the Network Card with network address 0016767082B1 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).12/27/2009 4:28:18 PM, error: MRxSmb [8003] - The master browser has received a server announcement from the computer YOUR-7M4XLFMC8T that believes that it is the master browser for the domain on transport NetBT_Tcpip_{AA83EE6E-47A. The master browser is stopping or an election is being forced.1/3/2010 4:29:36 AM, error: Service Control Manager [7023] - The Background Intelligent Transfer Service service terminated with the following error: The specified module could not be found.1/3/2010 1:41:10 AM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)